Improper Restriction of XML External Entity Reference in various Lexmark printer drivers for Windows allows attacker to disclose sensitive information to an arbitrary URL.
Metrics
Affected Vendors & Products
References
History
Thu, 21 Aug 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Lexmark
Lexmark universal Print Driver Microsoft Microsoft windows |
|
| Vendors & Products |
Lexmark
Lexmark universal Print Driver Microsoft Microsoft windows |
Tue, 19 Aug 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 19 Aug 2025 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Restriction of XML External Entity Reference in various Lexmark printer drivers for Windows allows attacker to disclose sensitive information to an arbitrary URL. | |
| Title | XML External Entity Injection vulnerability in various Lexmark Universal Drivers | |
| Weaknesses | CWE-611 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Lexmark
Published: 2025-08-19T13:12:09.782Z
Updated: 2025-08-20T03:56:03.978Z
Reserved: 2025-04-28T17:54:55.187Z
Link: CVE-2025-4044
Updated: 2025-08-19T13:27:17.357Z
Status : Awaiting Analysis
Published: 2025-08-19T14:15:38.737
Modified: 2025-08-20T14:40:17.713
Link: CVE-2025-4044
No data.